CVE-2019-12591

EUVD-2019-4185
NETGEAR Insight Cloud with firmware before Insight 5.6 allows remote authenticated users to achieve command injection.
Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.8 MEDIUM
NETWORK
HIGH
HIGH
CVSS:3.0/AV:N/AC:H/PR:H/UI:R/S:C/C:H/I:L/A:L
mitreCNA
6.8 MEDIUM
NETWORK
HIGH
HIGH
CVSS:3.0/AC:H/AV:N/A:L/C:H/I:L/PR:H/S:C/UI:R